Security Awareness Training Blog

Keeping You Informed. Keeping You Aware.
Stay on top of the latest in security including social engineering, ransomware and phishing attacks.

That Saudi oil and gas plant that got hacked. You'll never guess who could... OK, it's Russia

FireEye thinks it found the evil genius behind a nasty cyber-infection at a Saudi Oil refinery.
Continue Reading

Everything is Negotiable… Including Ransomware Payments

Should you find yourself in the situation where paying the ransom is your only out, it’s important to know how to navigate – and minimize – the payment. Cyber attacks are the new reality ...
Continue Reading

KnowBe4 Top-Clicked Phishing Email Subjects for Q3 2018 [INFOGRAPHIC]

The latest results of KnowBe4's quarterly top-clicked phishing email subjects is now available. We report on three different categories: general emails, social media related subjects, and ...
Continue Reading

Everyone’s Cyber-Worried; No One’s Cyber-Prepared

New data from the 2018 Chubb Cyber Risk Survey shows people and companies have a false sense of cybersecurity and aren’t really doing much about it.
Continue Reading

Scam Of The Week: Sextortion With A RATty Twist

Sextortion is a form of blackmail where the extortionist claims to have photos or video of the victim watching adult entertainment on their computer. The criminal threatens to send the ...
Continue Reading

[Heads-up] U.S. Government: "Your Weak Cyber Security Violates Federal Law"

Reuters just made me aware of a U.S. Securities and Exchange Commission report about a recent SEC investigation of nine companies that had been victims of CEO fraud had sufficient ...
Continue Reading

[Heads-up] Here Is Some New Powerful Ammo To Get InfoSec Budget Approval!

The team at Forbes Magazine's Tech Council asked me to write up the lessons we have learned over the last 8 years of helping you keep the bad guys out of your network. It took me a while, ...
Continue Reading

212 Million Exposed Contacts Would Be a Scammer’s Dream

A recent discovery of exposed data on a web-facing server owned by data aggregator and analytics provider Apollo demonstrates how data breaches empower scammers.
Continue Reading

CEOs and Boards are Unprepared for Cyber Risk

Deloitte’s CEO and Board Risk Management Survey shows organizations are unprepared for the future of cyberattack at the highest levels.
Continue Reading

75% of Users Don’t Know Cyber Security Best Practices

New data from MediaPRO’s third annual State of Privacy and Security Awareness Report shows users are less prepared this year to address the risk of cyberthreat.
Continue Reading

It Only Takes One Phish: 37K Records and a Month of Access

The attack on California-based Gold Coast Health Plan went undetected, allowing attackers access to healthcare data serving as fuel for fraud.
Continue Reading

Three Out of Ten People Would Fall for Impersonation Scams

Phony police calls in the US have been telling people they need to pay a fine for missing jury duty. In the UK the scams take a different form: the bogus police are asking for the ...
Continue Reading

UK publishers warn of global phishing scams targeting manuscripts

A succession of global phishing scams targeting publishers and agents has prompted responses from several global publishers, reports the Bookseller.
Continue Reading

Clueless: 64% of Working Adults Don’t Know What Ransomware Is

Ransomware is one of the new scourges of the net and every IT pro is fighting to protect users from attacks. However, a new study shows that the majority of working adults don’t know what ...
Continue Reading

A trio of wealthy Russians made an enemy of Russian President Vladimir Putin. Now they’re all dead.

The Wall Street Journal just came out with a rather chilling tale. "Nikolai Glushkov—found strangled to death with a dog leash in March—had been the last survivor of three men, once rich ...
Continue Reading

On Facebook, Make Sure They Are Who They Say They Are Before You become Friends

You receive a message apparently from a Facebook friend telling you they received another friend request from you. They go on to diagnose the "situation," tell you that you’ve been ...
Continue Reading

Your Users Need to be Smarter than the Scammers

Fraudsters have all but eliminated indicators used to detect fake identities on line, reports Socure, a predictive analytics provider. The difference between authentic and fake identities ...
Continue Reading

Ransomware Attacks Are Not Slowing Down

Annual ransomware-induced costs are projected to exceed $11.5 billion by 2019, according to Veeam. Defined by the Department of Justice as “a new model of cybercrime with a potential to ...
Continue Reading

Get the latest about social engineering

Subscribe to CyberheistNews